Bitcoin Forum

Economy => Exchanges => Topic started by: Coolserver.host on February 15, 2019, 11:07:07 PM



Title: Coinmama security breach?
Post by: Coolserver.host on February 15, 2019, 11:07:07 PM
Anybody else got this email?

Quote
Dear customer,

Today, February 15, 2019, we learned of a breach of about 450,000 emails and hashed passwords. We are still investigating the incident, but have reason to believe your account may be affected, and want to take immediate steps to secure it:
Change your Coinmama password. As a precautionary measure, we've reset your password. Click the link to create a new password. We recommend a unique password with 8 characters or more, using both upper-case and lower-case letters and a mixture of number and symbols
If you were using the same email and password to access other products and services, change those passwords as well
Given the dated nature of the published data, we have no reason to suspect that any other Coinmama systems are compromised. Having said that, we take your privacy seriously, and are monitoring our systems for suspicious activity.

We are also working closely with leading cybersecurity firms to understand the scope of the incident, and enhancing our systems to detect and prevent unauthorized access to user information.

We understand the distress this information may cause, and are happy to answer your questions. We’ll also keep everyone posted with updates in this blog, and will be addressing commonly asked questions in our dedicated FAQ. 

Seems to come from

Quote
  privacy@coinmama.com   

Could be spoofed though...


Title: Re: Coinmama security breach?
Post by: ChrisLandin on February 15, 2019, 11:21:26 PM
We all got the email. It’s true


Title: Re: Coinmama security breach?
Post by: TryNinja on February 15, 2019, 11:23:26 PM
Yes, it is real.

https://www.coinmama.com/blog/important-message-about-coinmama-account-security

Wrong board btw.


Title: Re: Coinmama security breach?
Post by: Coolserver.host on February 15, 2019, 11:29:37 PM
Yes, it is real.

https://www.coinmama.com/blog/important-message-about-coinmama-account-security

Wrong board btw.

Oh sorry... mods move if needed...

Damn... good thing i used a password only used for that site.


Title: Re: Coinmama security breach?
Post by: TryNinja on February 15, 2019, 11:30:45 PM
Oh sorry... mods move if needed...

Damn... good thing i used a password only used for that site.
You can move yourself.

Check the bottom-left corner of the page.


Title: Re: Coinmama security breach?
Post by: Coolserver.host on February 15, 2019, 11:35:09 PM
Oh sorry... mods move if needed...

Damn... good thing i used a password only used for that site.
You can move yourself.

Check the bottom-left corner of the page.

Done. Thanks.


Title: Re: Coinmama security breach?
Post by: harizen on February 15, 2019, 11:50:50 PM

I've just checked my email because I encountered this post and see that I have an email too about it.

My last visit on the site was way back 2 years ago* and I even forgot my password there so anyhow not really an alarming to me.

It's an official announcement so no harm following the instructions.


Title: Re: Coinmama security breach?
Post by: hugeblack on February 16, 2019, 07:23:53 AM
The company "Coinmama" does not seem to know exactly what happened, because commenting on the cause and nature of the hacks seems strange. [Given the dated nature of the published data, we have no reason to suspect that any other Coinmama systems are compromised (https://www.reddit.com/r/CryptoCurrency/comments/ar2xby/coinmama_hacked_450000_emailhashed_pw_stolen/)]
Also, the data relates to registered users until August 5th, 2017.

In addition, I think the reason for their suspicions is that someone who tried to sell millions of user data in one of the dark Web sites "Dream Market."
Also, it is not known whether the individual is hacked or the data has been hacked by and wants to re-sell it.
Read more 127 million user records from 8 companies put up for sale on the dark web (https://www.zdnet.com/article/127-million-user-records-from-8-companies-put-up-for-sale-on-the-dark-web/)



Title: Re: Coinmama security breach?
Post by: Slow death on February 16, 2019, 12:45:11 PM
[...]

this was something very bad and when I received the email I thought it was some bad joke. I wonder who will continue to use their service after this news


Title: Re: Coinmama security breach?
Post by: Bostraticus on February 18, 2019, 11:40:24 AM
I have not used them for a very long time, but I also received an email. This is a bad sign, even if the problem is not so serious. I finally lost confidence in this service.